Why calculate pi to estimate randomness?@tylo fgrieu's answer seems new as well. I'm not sure which one came first, but this information certainly seems to be in the second paragraph of the answer of fgrieu, which would make this answer redundant.

How can I read the AE figures?I think the tweak (e.g. just a counter) is already supposed to be in there, otherwise scheme 2 would violate CPA (if $M_1 = M_3$ it would clearly show up as $C_1 = C_3$, and authentication would be vulnerable for similar reasons).

Jul23

comment

TRNG vs PRNG - Entropy?@BufferOverflow The same kind of trick could of course be used for a TRNG. Do you know if the TRNG in Intel chips can be trusted? It's not using Dual ECC but how are you going to prove the source trustworthy?